diff options
author | Matt Caswell <matt@openssl.org> | 2018-12-03 18:01:07 +0100 |
---|---|---|
committer | Matt Caswell <matt@openssl.org> | 2018-12-11 12:53:55 +0100 |
commit | 08afd2f37a4465c90b9b9e2081c9e8df4726db89 (patch) | |
tree | 97739635c0d0032a207e64911f39dd46b7a10518 /test/recipes/70-test_sslskewith0p.t | |
parent | typo ANS1 -> ASN1 (diff) | |
download | openssl-08afd2f37a4465c90b9b9e2081c9e8df4726db89.tar.xz openssl-08afd2f37a4465c90b9b9e2081c9e8df4726db89.zip |
Disallow Ed448 signature malleability
Check that s is less than the order before attempting to verify the
signature as per RFC8032 5.2.7
Fixes #7706
Reviewed-by: Kurt Roeckx <kurt@roeckx.be>
(Merged from https://github.com/openssl/openssl/pull/7748)
Diffstat (limited to 'test/recipes/70-test_sslskewith0p.t')
0 files changed, 0 insertions, 0 deletions